June 15, 2016 By Simon Smith 2 min read

There can’t be many London districts with such an evocative link to sport as Wimbledon. The name conjures up images of grass, rackets and, of course, strawberries and cream. The All England Lawn Tennis Club hosts the oldest and one of the most watched tournaments in the world. The standards of play are of the highest caliber, and everything about the event has to match. The value of the brand is commensurate with that.

In this increasingly digital era, that high standard also applies to the digital experience of fans using tournament sites to keep up with scores and news. That experience has to be both seamless and flawless. Yet as we become increasingly digital, the threats to the platform keep on increasing. We must defend against these risks if we hope to protect both an online presence and a reputation.

IBM and Wimbledon Form a Doubles Pair

During the 2016 tournament, IBM Security will detect and block thousands of suspicious security events on the Wimbledon platform to ensure this seamless experience for users. The scale of the task is immense: In 2015, in the lead-up to the tournament, we saw a 300 percent increase in blocked security attacks. During the tournament itself, we experienced a 500 percent increase. Even more significantly, in April 2016, we witnessed a 1,500 percent increase in security incidents blocked on our sporting platforms.

Sport has been a huge driver in the development of the internet and its supporting technologies. So many people now experience an event in a digital environment, which provides not only coverage, but also statistics, news and additional information. We expect this information to be readily available to enhance our experience, and perhaps more critically, we expect it to be fast, reliable and always on. As consumers expect more, the platforms deployed change and the attacks evolve. It is a continuous cycle of development.

IBM secures these sporting platforms by leveraging the IBM Cloud, the same platform that we use for our own IBM site. This allows for rapid deployment, integration and availability as well as massive increases in scale. We deploy a defense-in-depth approach that is needed to protect against well-funded, well-organized and motivated attackers.

Serving an Ace With the Right Security Products

The Wimbledon website is protected by multiple security products, at the core of which is the IBM Security QRadar SIEM. This consolidates log source event data from thousands of devices, endpoints and applications distributed throughout a network, performing immediate normalization and correlation activities on raw data to distinguish real threats from false positives.

IBM Security QRadar also consolidates IBM Security X-Force Threat Intelligence, which supplies a list of potentially malicious IP addresses including malware hosts, spam sources and other threats. It correlates system vulnerabilities with event and network data, helping to prioritize security incidents.

So enjoy the tournament knowing that IBM is working around the clock to keep the digital platform secure. Just don’t have too much cream with your strawberries.

Find out more about how IBM secures Wimbledon

More from

Hive0137 and AI-supplemented malware distribution

12 min read - IBM X-Force tracks dozens of threat actor groups. One group in particular, tracked by X-Force as Hive0137, has been a highly active malware distributor since at least October 2023. Nominated by X-Force as having the “Most Complex Infection Chain” in a campaign in 2023, Hive0137 campaigns deliver DarkGate, NetSupport, T34-Loader and Pikabot malware payloads, some of which are likely used for initial access in ransomware attacks. The crypters used in the infection chains also suggest a close relationship with former…

Unveiling the latest banking trojan threats in LATAM

9 min read - This post was made possible through the research contributions of Amir Gendler.In our most recent research in the Latin American (LATAM) region, we at IBM Security Lab have observed a surge in campaigns linked with malicious Chrome extensions. These campaigns primarily target Latin America, with a particular emphasis on its financial institutions.In this blog post, we’ll shed light on the group responsible for disseminating this campaign. We’ll delve into the method of web injects and Man in the Browser, and…

Crisis communication: What NOT to do

4 min read - Read the 1st blog in this series, Cybersecurity crisis communication: What to doWhen an organization experiences a cyberattack, tensions are high, customers are concerned and the business is typically not operating at full capacity. Every move you make at this point makes a difference to your company’s future, and even a seemingly small mistake can cause permanent reputational damage.Because of the stress and many moving parts that are involved, businesses often fall short when it comes to communication in a crisis.…

Topic updates

Get email updates and stay ahead of the latest threats to the security landscape, thought leadership and research.
Subscribe today